Sign inSign up
PyTorch

dhi.io/pytorch

PyTorch 2.11.x

CIS
linux/amd64
debian 13
Tags:

2.11-cuda13.0-cudnn9, 2.11-cuda13.0-cudnn9-debian, 2.11-cuda13.0-cudnn9-debian13, 2.11.0-cuda13.0-cudnn9, 2.11.0-cuda13.0-cudnn9-debian, 2.11.0-cuda13.0-cudnn9-debian13

Index digest:

sha256:dc482ef7d9dc7ba0e9249c02581beed886e41678b7c22be4a7f64b849bd1cd68

Manifest digest:

sha256:b2b824b144bd0be17a73fe3a69afffc2d8f6d858ef71fc73a41e34a85b958ae9

Size

2.33 GB

Last pushed

20 hours ago

Vulnerabilities

0
2
5
2
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/pytorch:2.11-cuda13.0-cudnn9

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/pytorch:2.11-cuda13.0-cudnn9 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/pytorch@sha256:fd8a1fb4c1f9a43c8a357164425131105377b5b4d3aa2d093f94c6b5d185c560
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/pytorch@sha256:1866fe39f309861ae1456e6b265c6893f59b6c94b047e1c5843f4f1ce48803d8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/pytorch@sha256:9d2c30dba97bd16011f79ea09ad4e826e9711c865159a03183ed920fd1c8202f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/pytorch@sha256:3bcc9593f892b7345bab79b13cd80f08c41b4464dc2c215dbb9fdafd9b55e8f8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/pytorch@sha256:02f8213c86397f15c134187ae341a55e2eb5c70f952cf066a53ff80a3c6c3645
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/pytorch@sha256:45264311feb45aeb72beee4ac6c1dd2468e95a3a788f4942a86b65d4227ba893
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/pytorch@sha256:bd10648351c40b205620347992d06c5c19c4b79a80a94634b4bccab9b225f03a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/pytorch@sha256:ef7eb070bc86ce45e5ba734390bf13fde312a880ea4abbc3ceea3050369b04ce
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/pytorch@sha256:5c4519ca2ccfae9794d104b0a3fc5806916dda90dcf08f2983575c0fa5f1feb3
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/pytorch@sha256:a82d35794264f27044d5644e5c7312258f25ceaea9d380ddc172e57655d9e783
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/pytorch@sha256:688b4815f5a9fefec22d4256c47edefdf2412602ec679253ca15dd2242ab422a
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/pytorch@sha256:8ed09e87cf9f69d2c28a2aaf2d91e2970e2a916794e7e07e6edac2a42ac2b375
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/pytorch@sha256:dde88376d610ffd50eb805085b55e3b11d9e740f452c833b6b24f9c5fe640b21
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/pytorch@sha256:1b214726be1f3be961a51a69e4111ef39e90fdc066f8b3ca89c79a34dfd0e292
SPDX SBOMhttps://spdx.dev/Documentdhi.io/pytorch@sha256:1c62ccbc7f1a131396e5a8ebea3590281e6ea84aef66457ff5676b27ab2bf557